CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects Cisco. It may be remotely exploitable.
CVE
CVE-2010-1575
Severity
HIGH
CVSS
7.5
EPSS
1.69%
Cisco
Original NVD Description
The Cisco Content Services Switch (CSS) 11500 with software 08.20.1.01 conveys authentication data through ClientCert-* headers but does not delete client-supplied ClientCert-* headers, which might allow remote attackers to bypass authentication via crafted header data, as demonstrated by a ClientCert-Subject-CN header, aka Bug ID CSCsz04690.